Home web3.0 Bittensor Discloses Details of a Security Breach That Resulted in a Loss of $8M Worth of TAO Tokens

Bittensor Discloses Details of a Security Breach That Resulted in a Loss of $8M Worth of TAO Tokens

Jul 11, 2024 pm 05:11 PM

The incident temporarily suspended network operations just a month after a similar breach, costing the project $11 million.

Bittensor Discloses Details of a Security Breach That Resulted in a Loss of M Worth of TAO Tokens

AI blockchain project Bittensor has disclosed details of a recent security breach that resulted in a loss of at least $8 million in its native token, TAO. The incident led to a temporary suspension of network operations, coming just a month after a previous breach cost the project $11 million.

Now, Bittensor has released a detailed report outlining the nature and cause of the latest exploit.

Root Cause of Bittensor’s Wallet Hack

The report identifies the root cause of the attack as a malicious package in the PyPi Package Manager version 6.12.2. The compromised package contained code designed to steal unencrypted coldkey details.

When users downloaded this package and decrypted their coldkeys, the decrypted bytecode was transmitted to a remote server controlled by the attacker. This vulnerability primarily affected users who downloaded the Bittensor PyPi package between May 22 and May 29 and performed any operations involving the decryption of hotkeys or coldkeys.

The attack timeline shows that the attacker initiated fund transfers to their wallet, which was quickly detected by the Opentensor Foundation (OTF). A response team, dubbed a “war room,” was established to handle the situation.

The attack was neutralized by placing the Opentensor chain validators behind a firewall and activating safe mode, which halted all transactions and allowed for a detailed analysis of the breach.

Security Actions and Immediate Measures

In response to the attack, the OTF team took immediate steps to mitigate the damage. This included removing the malicious 6.12.2 package from the PyPi Package Manager repository.

Furthermore, Bittensor has cooperated with several cryptocurrency exchanges to share details of the attack, in an effort to track down the attacker and attempt to recover the stolen funds.

To enhance security and prevent future incidents, Bittensor is implementing several measures. These include stricter access and verification processes for packages uploaded to PyPi, increasing the frequency of security audits, following best practices in public security policies, and improving monitoring and logging of package uploads and downloads.

Additionally, the Bittensor team advises users to upgrade to the latest version of Bittensor to create new wallets and transfer funds once the blockchain resumes normal operations.

Resumption of Operations and Further Investigations

With the code review process nearing completion, Opentensor plans to gradually resume normal operations of the Bittensor blockchain. This phased approach will ensure that all security vulnerabilities have been addressed before allowing transactions to flow again.

The Bittensor team remains engaged in further investigations into the breach with the PyPi maintainers and is committed to implementing additional security enhancements to prevent future incidents.

At the time of writing, TAO is trading at $201, showing a decline of over 10% in the past 24 hours, according to CoinMarketCap data. Despite this recent downturn, the token has achieved significant gains of more than 386% year-to-date.

The above is the detailed content of Bittensor Discloses Details of a Security Breach That Resulted in a Loss of $8M Worth of TAO Tokens. For more information, please follow other related articles on the PHP Chinese website!

Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

Video Face Swap

Video Face Swap

Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Tools

Notepad++7.3.1

Notepad++7.3.1

Easy-to-use and free code editor

SublimeText3 Chinese version

SublimeText3 Chinese version

Chinese version, very easy to use

Zend Studio 13.0.1

Zend Studio 13.0.1

Powerful PHP integrated development environment

Dreamweaver CS6

Dreamweaver CS6

Visual web development tools

SublimeText3 Mac version

SublimeText3 Mac version

God-level code editing software (SublimeText3)

Hot Topics

Java Tutorial
1664
14
PHP Tutorial
1266
29
C# Tutorial
1239
24
Nasdaq Files to List VanEck Avalanche (AVAX) Trust ETF Nasdaq Files to List VanEck Avalanche (AVAX) Trust ETF Apr 11, 2025 am 11:04 AM

This new financial instrument would track the token's market price, with a third-party custodian holding the underlying AVAX

OM Mantra Cryptocurrency Crashes 90%, Team Allegedly Dumps 90% of Token Supply OM Mantra Cryptocurrency Crashes 90%, Team Allegedly Dumps 90% of Token Supply Apr 14, 2025 am 11:26 AM

In a devastating blow to investors, the OM Mantra cryptocurrency has collapsed by approximately 90% in the past 24 hours, with the price plummeting to $0.58.

TrollerCat ($TCAT) Stands Out as a Dominant Force in the Meme Coin Market TrollerCat ($TCAT) Stands Out as a Dominant Force in the Meme Coin Market Apr 14, 2025 am 10:24 AM

Have you noticed the meteoric rise of meme coins in the cryptocurrency world? What started as an online joke has quickly evolved into a lucrative investment opportunity

Zcash (ZEC) Reaches a High of $35.69 as a Record Amount of Tokens Move Out of Circulation Zcash (ZEC) Reaches a High of $35.69 as a Record Amount of Tokens Move Out of Circulation Apr 09, 2025 am 10:36 AM

Zcash was one of the top gainers during the latest market rally, reaching a high of $35.69 as traders moved a record amount of tokens out of circulation.

Is Wall Street Quietly Backing Solana? $42 Million Bet Says Yes Is Wall Street Quietly Backing Solana? $42 Million Bet Says Yes Apr 10, 2025 pm 12:43 PM

A group of former Kraken executives acquired U.S.-listed company Janover, which secured $42 million in venture capital funding to begin building a Solana (SOL) treasury.

The Crypto Market Has Witnessed a Rebound Following the Recent Sheer Downturn The Crypto Market Has Witnessed a Rebound Following the Recent Sheer Downturn Apr 13, 2025 am 11:40 AM

The crypto market has witnessed a rebound following the recent sheer downturn. As per the exclusive market data, the total crypto market capitalization has reached $2.71Ts

As Fear Drives Selling, BlockDAG (BDAG) Stands Out from the Crowd As Fear Drives Selling, BlockDAG (BDAG) Stands Out from the Crowd Apr 13, 2025 am 11:48 AM

As fear drives selling in the crypto market, major coins like Cardano and Solana face tough times.

Bitcoin (BTC) Has Outperformed Ethereum by Over 85% in Realized Market Cap Growth Bitcoin (BTC) Has Outperformed Ethereum by Over 85% in Realized Market Cap Growth Apr 11, 2025 am 10:12 AM

Bitcoin (BTC) has outperformed Ethereum by over 85% in realized market capitalization growth, according to data provided by on-chain analytics platform Glassnode on April 10.